CVE-2025-1193
8.1
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N
Exploitability: 2.8 / Impact: 5.2
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)
Description
Improper host validation in the certificate validation component in Devolutions Remote Desktop Manager on 2024.3.19 and earlier on Windows allows an attacker to intercept and modify encrypted communications via a man-in-the-middle attack
by presenting a certificate for a different host.
Affected (2)
Products: Devolutions: Remote Desktop Manager
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2024.3.20.0 |
References (1)
Source: security@devolutions.net
Vendor Advisory
Timeline
No history available yet.